uphlds-com-exchange[.]pages[.]dev
“Complete Guide to Uphold Exchange | Multi-Asset Trading Platform”
Kaydedilmiş gözlem
Gözlemlenen başlık farkı
Kanıt özeti
PhishDestroy identifies a newly active phishing domain, uphlds-com-exchange.pages.dev, engineered to impersonate the legitimate cryptocurrency exchange MEXC. This fraudulent site employs visually deceptive interfaces, including cloned login portals and fake KYC forms, to harvest user credentials and sensitive financial data. The threat actor behind this campaign leverages Cloudflare’s infrastructure to obfuscate their origin while hosting the malicious pages on Google Trust Services-validated infrastructure (IP: 188.114.97.3). Despite its recent deployment, this domain has not yet been flagged by VirusTotal scanning engines, with 6 out of 95 detections as of the latest analysis. The absence of widespread detection underscores the stealth and sophistication of this operation, posing a critical risk to users seeking to access MEXC’s services. This domain was flagged through PhishDestroy’s automated threat intelligence pipeline, which correlated the page structure with known MEXC branding elements and detected anomalies in the URL path (uphlds-com-exchange.pages.dev). The registrar is Cloudflare, Inc., and the domain resolves to a cloud-hosted IP address (188.114.97.3) associated with dynamic content delivery networks. Notably, VirusTotal’s 6/95 detection ratio suggests that signature-based defenses have not yet adapted to this campaign, increasing the likelihood of successful exploitation. The domain’s use of Google Trust Services for SSL certificates further enhances its credibility, making it harder for users to distinguish it from the legitimate MEXC platform. If you have visited uphlds-com-exchange.pages.dev or entered any credentials, assume your data has been compromised. Immediately cease using the provided login credentials for MEXC or any other accounts. Revoke access to the affected email and passwords by updating them on the official MEXC website (mexc.com) and enabling two-factor authentication (2FA). Use a password manager to generate and store unique passwords for each account, reducing the risk of credential stuffing attacks. Report the incident to MEXC’s support team and monitor your financial accounts for unauthorized activity. For further analysis, consult the full PhishDestroy report on this threat.
Data Coverage
Ağ Güvenliği İstihbaratı
Tehdit Müdahale Pipeline
Engelleme listesi kapsamı
10 izlenen harici kaynak · kayıtlı anlık görüntü 10.08.2026
Adli İstihbarat
VirusTotal Analizi
Site Performans Analizi
Google PageSpeed Insights — mobile performance audit of uphlds-com-exchange.pages.dev · checked Mar 30, 2026
Bu Siteden Etkilendiniz mi?
Hesap kimlik bilgilerini, kişisel bilgileri veya ödeme bilgilerini girdiyseniz ya da bu alan adından bir dosya indirdiyseniz hemen harekete geçin. Aşağıda olayı bildirmenize ve kendinizi korumanıza yardımcı olacak kaynaklar bulunmaktadır.
Yerel Yetkililere Bildirin
resmi siber suç iletişim bilgileri veya şikayet taslağı oluştur → almak için ülkenizi seçin.
Herhangi Bir Alan Adını Kontrol Et
Saklanan engelleme listesi, WHOIS, DNS ve genel tarama kanıtlarını kullanarak tehdit analizi
Şimdi TaraOltalama Olayını Bildir
Şüpheli alan adlarını tehdit veritabanımıza bildirin — topluluğu koruyun
BildirCanlı Tehdit Akışı
Son kimlik avı raporları ve gözlemlenen kullanılabilirlik değişiklikleri
İzleGelişmelerden Haberdar Olun, Güvende Kalın
Canlı tehditleri izleyin veya bunun yanlış bir uyarı olduğunu düşünüyorsanız bu kayda itiraz edin